Senior Director - GRC Engineer
$154.5k - $226.6kEli Lilly and Company
The Senior Director, Governance Risk and Compliance (GRC) Engineer is a senior leader within the Digital Legal Office (DLO) GRC & Service Management organization. The role translates the DLO’s privacy, AI, and data governance frameworks into effective, auditable, and increasingly automated control designs. The GRC Engineer bridges the gap between what regulatory and policy obligations require, and how those obligations are implemented as operational controls by business control owners across the enterprise. The GRC Engineer leads the engineering team that ensures controls are well-designed, produce the evidence required for KRI/KPI measurement, and can be sustained and automated over time. They also have responsibility for the control maturity roadmap; synthesizing GRC Analyst outputs, KRI/KPI performance data, and assessment findings, into a strategic plan that prioritizes where and how controls need to mature. The GRC Engineer is the primary technical enablement partner for the DLO Embedded Team, equipping them to guide business control owners through implementation. This influence model requires a senior individual who can credibly engage at the right level across the enterprise, driving adoption of control designs with stakeholders who have contending priorities and significant organizational authority. This role also serves as the DLO’s peer-level liaison to Cyber Engineering and Security Architecture teams, ensuring that DLO-owned control designs are technically coherent with the broader enterprise security architecture, and that shared control boundaries are clearly defined. Key Responsibilities 1. Control Design & Architecture Own end-to-end design of DLO-owned privacy, AI, and data governance controls—translating regulatory obligations, policy requirements, and risk appetite into auditable, repeatable control architectures. Define and retain control design specifications for each control in the DLO GRC Framework, including test procedures, evidence requirements, data flows, and automation targets. Apply privacy-by-design and AI-by-design principles throughout the control engineering lifecycle, from inception through deployment and ongoing sustainment. Lead technical analysis to identify control gaps, design deficiencies, and automation opportunities; propose and drive remediation with appropriate urgency. Develop and publish design documentation, technical specifications, and implementation guides that create consistency in how controls are built and validated. Design control evidence outputs that directly feed KRI/KPI measurement—ensuring that what gets measured is a function of control design, not manual data collection. 2. Control Maturity Roadmap & Strategic Direction Be responsible for the DLO control maturity roadmap—a multi-year strategic plan defining how DLO-owned controls will evolve in response to regulatory change, technology advancement, and enterprise risk posture shifts. Synthesize inputs from GRC Analysts (risk assessments, control effectiveness ratings, gap analyses) and KRI/KPI performance data to identify where controls are underperforming, immature, or misaligned to risk appetite—and translate those findings into prioritized maturity initiatives. Define maturity targets for each control domain (privacy, AI, data governance), establishing clear progression criteria from initial/ad-hoc through optimized/automated states. Lead strategic planning processes that translate the roadmap into prioritized, funded, and governed initiatives with clear milestones, owners, and success metrics. Anticipate regulatory and technology trends (e.g., EU AI Act enforcement, evolving NIST frameworks, agentic AI) and proactively incorporate their implications into control design direction and maturity targets. Partner with GRC Analysts and Service Management to align the control maturity roadmap with the risk assessment calendar and service delivery capacity. Engage DLO leadership and senior stakeholders regularly to communicate roadmap progress, emerging risks, and recommended strategic investments in control maturity. 3. Embedded Team & Business Control Owner Enablement Serve as the senior technical enablement partner for the DLO Embedded Team, providing control design blueprints, reference architectures, and technical guidance that equip them to work effectively with business control owners. Develop reusable control design frameworks, templates, and implementation patterns that business teams can adapt to their specific processes and technology environments. Directly engage business control owners on complex or contested control designs—providing the technical authority and credibility required to resolve design disagreements, negotiate evidence requirements, and drive adoption of control standards. Provide support and direction on how to translate assessment findings, incidents, and issues into actionable control improvements. Triage and advise on sophisticated, ambiguous control scenarios where regulatory guidance, technical constraints, and business priorities must be carefully balanced. Build engagement models that create a consistent control design culture across the enterprise—proactively sharing protocols, lessons learned, and design patterns. 4. Cyber Engineering & Architecture Partnership Serve as the DLO’s peer-level liaison to the CISO organization’s Engineering and Security Architecture teams for matters of control design, technical integration, and shared control boundaries. Ensure DLO-owned controls are technically coherent with enterprise security architecture—particularly where privacy, AI, and cybersecurity controls share infrastructure, tooling, or evidence sources. Partner on control design reviews where DLO and Cyber controls intersect (e.g., data protection controls that serve both privacy and security objectives). Evaluate and recommend privacy-enhancing technologies (PETs), AI governance tools, and GRC platform capabilities in coordination with Cyber Architecture’s technology roadmap. Coordinate with the AI Strategy & Digital Risk role to present a coherent DLO interface to the CISO organization. 5. GRC Platform & Automation Enablement Partner with Service Management to design control configurations within the GRC platform (ServiceNow IRM), ensuring that what is designed can be operationalized, monitored, and reported against. Provide engineering leadership for the automation and AI-enablement of control operations across DLO owned and non-DLO owned controls—identifying where intelligent workflows, AI agents, and tooling can reduce manual effort and improve control reliability. Ensure that changes to the regulatory environment or technology landscape trigger appropriate design reviews and service updates, maintaining a living control ecosystem. Contribute to the DLO service catalog by ensuring controls are represented as managed services with defined inputs, outputs, SLAs, and continuous improvement mechanisms. Basic Qualifications Bachelor’s degree in Computer Science, Information Systems, Engineering, Cybersecurity, or a related technical field. 10+ years of progressive experience in GRC, risk engineering, privacy engineering, or security architecture 5+ years of experience focused on control design, implementation, or assurance at an enterprise scale. Qualified applicants must be authorized to work in the United States on a full-time basis. Lilly will not provide support for or sponsor work authorization or visas for this role, including but not limited to F-1 CPT, F-1 OPT, F-1 STEM OPT, J-1, H-1B, TN, O-1, E-3, H-1B1, or L-1. Preferred Qualifications Demonstrated ability to translate regulatory and policy requirements into technical control specifications and implementation guidance. Experience influencing senior team members on control design decisions in a matrixed, federated operating model. Experience with GRC platforms (ServiceNow IRM preferred) including control configuration, evidence management, and reporting design. Deep solid understanding of privacy and AI regulatory frameworks (GDPR, NIST Privacy Framework, NIST AI RMF, EU AI Act, U.S. state privacy laws). Experience developing and owning control maturity roadmaps, including defining maturity models, setting progression targets, and aligning investment to risk posture. Experience operating within a federated risk model, enabling business control owners rather than implementing controls directly. Strong verbal and written communication skills, with demonstrated ability to convey technical control design concepts to non-technical senior leaders. Experience in regulated industries—pharmaceutical, healthcare, or life sciences strongly preferred. Professional certification in privacy, risk, or security (e.g., CIPP/E, CIPT, CRISC, CISSP, CDPSE). Experience with privacy-enhancing technologies (PETs), AI governance tooling, or data classification technologies. Familiarity with ISO 27001/27701, SOC 2 controls, or equivalent control frameworks. Experience scaling control capabilities across a large, matrixed enterprise with multiple lines of defense. Hands‑on experience with control automation, including workflow orchestration, API‑based evidence collection, or AI‑assisted monitoring. Prior exposure to 2nd/3rd line of defense coordination (Internal Audit, Enterprise Risk, Quality). Track record of partnering with cybersecurity engineering and architecture functions on shared control design. Lilly is dedicated to helping individuals with disabilities to actively engage in the workforce, ensuring equal opportunities when vying for positions. If you require accommodation to submit a resume for a position at Lilly, please complete the accommodation request form ( ) for further assistance. Please note this is for individuals to request an accommodation as part of the application process and any other correspondence will not receive a response. Lilly is proud to be an EEO Employer and does not discriminate on the basis of age, race, color, religion, gender identity, sex, gender expression, sexual orientation, genetic information, ancestry, national origin, protected veteran status, disability, or any other legally protected status. Actual compensation will depend on a candidate’s education, experience, skills, and geographic location. The anticipated wage for this position is $154,500 - $226,600 Full‑time equivalent employees also will be eligible for a company bonus (depending, in part, on company and individual performance). In addition, Lilly offers a comprehensive benefit program to eligible employees, including eligibility to participate in a company-sponsored 401(k); pension; vacation benefits; eligibility for medical, dental, vision and prescription drug benefits; flexible benefits (e.g., healthcare and/or dependent day care flexible spending accounts); life insurance and death benefits; certain time off and leave of absence benefits; and well‑being benefits (e.g., employee assistance program, fitness benefits, and employee clubs and activities). Lilly reserves the right to amend, modify, or terminate its compensation and benefit programs in its sole discretion and Lilly’s compensation practices and guidelines will apply regarding the details of any promotion or transfer of Lilly employees. #J-18808-Ljbffr Eli Lilly and Company
$105k - $130k
MISO Default Brand is seeking a Senior GRC Risk Analyst to safeguard the power grid through cybersecurity risk management. In this role, you will work closely with various teams to identify, assess, and mitigate cybersecurity risks while ensuring compliance with industry...Senior$105k - $130k
Midcontinent-Independent-System is looking for a Senior GRC Risk Analyst in Carmel, Indiana. This role focuses on cybersecurity, specifically identifying, assessing, and mitigating risks related to the power grid. Candidates should have a Bachelor’s degree in a relevant...Senior$105k - $130k
...Crossing Rd Eagan, MN 55121, USA Are you passionate about cybersecurity and protecting critical infrastructure? Join MISO as a Senior GRC Risk Analyst , where you will play a key role in safeguarding the power grid by identifying, assessing, and mitigating cybersecurity...SeniorLocal area$163.5k - $264k
Initial Therapeutics, Inc. is seeking a Senior Director for Mechanical & Materials Engineering in Indianapolis, IN. This role involves strategic leadership for mechanical design and materials engineering, fostering a culture of quality and continuous improvement within...Senior$163.5k - $239.8k
Overview Lead engineering at the intersection of embedded systems, automation, and high‑volume manufacturing for Lilly’s drug‑delivery devices and combination products. Drive design, development, commercialization and global automation of DDCS products. Key Responsibilities...Senior- ...and volunteerism. We prioritize people and innovation across our operations. Position Overview We are seeking a PhD‑credentialed engineering leader to own the mechanical design, materials science, and verification testing capabilities for Lilly’s drug delivery devices and...Senior
$125k - $165k
...About the job Senior Project Manager - Aviation Engineering Pay: $125,000.00 - $165,000.00 per year Why This Is a Great Opportunity Lead high-impact aviation engineering projects that directly shape airport infrastructure and regional growth Step...SeniorFull timeLocal areaRelocationRelocation package$87k - $222.2k
Initial Therapeutics, Inc. is seeking a hands-on engineer to integrate agentic AI with laboratory automation systems in Indianapolis, Indiana. The role involves rapid prototyping and scaling AI-driven workflows to enhance molecule discovery. Candidates should hold a PhD...Senior$286.2k - $326.7k
...Sr. Director, Machine Learning Engineering (Remote-Eligible) Overview At Capital One, we are creating responsible and reliable AI systems, changing... ...team strategy while mentoring managers, tech leads, and senior engineers. Make high judgment build‑vs‑buy decisions...SeniorFull timePart timeLocal areaRemote work- Luxoft is seeking an experienced Information Security professional to establish and govern an enterprise-wide security framework. This role involves ownership of security governance across various platforms including cloud and AI, and encompasses risk management, policy...Senior
- ...Overview Janssen & Spaans Engineering (JSE) is looking for a Senior Project Manager – Road Design to join our team. The successful candidate will provide engineering excellence, plan, identify, prioritize, track and monitor tasks and sequences in the process to produce...SeniorFull timeLocal areaFlexible hours
- ...A leading engineering firm is seeking a Senior Project Manager to lead significant Data Center projects. The role involves managing complex projects from planning through construction, mentoring teams, and ensuring high standards of quality. Ideal candidates will have...SeniorRemote workFlexible hours
- ...Senior Project Manager - Engineering Design - Data Center Arizona - Remote; Arkansas - Remote; Florida - Remote; Georgia - Remote; Idaho - Remote; Illinois - Remote; Indiana - Remote; Iowa - Remote; Kansas - Remote; Kentucky - Remote; Louisiana - Remote; Michigan - Remote...SeniorFull timeRemote workWorldwideFlexible hours
$143k - $243k
A healthcare benefit management company seeks a Senior Principal Actuary to provide actuarial direction and innovative modeling concepts. This remote role requires strong strategic pricing expertise and leadership skills with a minimum of 10 years in actuarial work. The...SeniorRemote work$112.5k - $171k
Langan provides expert land development engineering and environmental consulting services for major developers, renewable energy producers... ...impactful contributions. Job Summary Langan is seeking a Senior Geotechnical Project Manager / Engineer to join its collaborative...SeniorHourly payFull timeTemporary workWork experience placementWork at officeLocal areaWorldwideFlexible hours- ...First Enterprise Experiences at Teradata. We are seeking a Senior Manager, Software Engineering to lead teams building modern, scalable, and AI‑first... ...‑paced, AI‑driven environment. This role reports to the Director of Engineering, Experience / User Platform. Key Responsibilities...SeniorPermanent employmentFlexible hours
- ...Senior Director, Principal Gifts About the Company Philanthropic organization supporting Indigenous culture & individuals Industry Non-Profit Organization Management Type Non Profit Founded 2017 Employees 11-50 Categories Non-Profit & Philanthropy About the Role The Company...Senior
- ...application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Sr. Principal Engineer Manufacturing Plant, Indianapolis, IN, US 30+ days ago Requisition ID: 4860 Heartland Food Products Group is a global leader in...Senior
- A leading engineering firm in Indianapolis is seeking an Associate Principal, Project Manager (MEP). The ideal candidate will lead multi-discipline projects, manage scope, schedule, and budget effectively while ensuring exceptional client service. With a strong background...Senior
- Senior Water/Wastewater Process Engineer & Project Manager Join to apply for the Senior Water/Wastewater Process Engineer & Project Manager role at Donohue & Associates, Inc. Position Overview This position offers an exciting opportunity for the selected candidate to be...Senior
- The Opportunity RS&H is seeking a Senior Project Manager/Senior Highway Engineer to support projects for the Transportation-Infrastructure Practice based out of our Indianapolis, IN office. Join Our Team & Elevate Your Career! RS&H is excited to invite you to join our...SeniorInterim roleWork at office
- The Obama Foundation in Chicago seeks a Senior Associate for Principal Gifts & Engagement. This hybrid role involves managing strategic support functions and operational pipelines for ultra-high-net-worth individual donor engagements. The ideal candidate will have 3-4...Senior
- ...looking for an Associate Principal, Electrical, based in Indianapolis. This role entails leading project teams in all electrical engineering aspects, from equipment selection to quality control. Candidates should possess a Bachelor's Degree in Electrical Engineering, an...Senior
- ...Job Description Job Description Description: Position Summary The Senior Project Manager – Aviation Engineering will provide senior level project management oversight on airport design projects. The Senior Project Manager will develop strong working relationships...Senior
- ...Senior Director Clinical Operations About the Company Fast-growing biotechnology (BioTech) organization Industry Biotechnology Type Privately Held About the Role The Senior Director Clinical Operations will be responsible for spearheading the operational management of...Senior
- ...BSA is seeking a strategic and collaborative Director of Engineering to lead our national engineering discipline, including mechanical, electrical, plumbing, and low voltage technology. In this role, you will drive technical excellence and performance across projects that...Flexible hours
- ...process. Full Time Corporate VP Indianapolis, IN, US 6 days ago Requisition ID: 2258 Applied Composites (AC) is seeking a Director of Engineering who will lead the engineering activities within a business unit or a group of businesses. Will ensures appropriate resources...Permanent employmentFull timeTemporary workWork experience placement
$114k - $198k
...directly report through their respective functions but will be coordinated by the Ramp Team Sr. Director. Key Objectives/Deliverables: Provide Peptide API process engineering expertise to the Global Facility Delivery team and the Site Process Engineering team, with a...SeniorTemporary workLocal areaRelocationFlexible hoursShift work- Gainbridge in Zionsville, IN is looking for a dedicated Operations Supervisor to oversee mailroom and document management operations. This role involves leading teams to maintain efficient workflow, ensuring compliance with regulations, and managing relationships with vendors...Senior
- Senior/Principal Reliability Coordinator Operator Training Liaison Job Category : Operations Requisition Number : SROPE002661 Posted: May 20, 2026 Full-Time On-site Locations Carmel, IN 46032, USA Description As our Senior/Principal Reliability Coordination Trainer , you...SeniorFull timeTraineeship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Director - GRC Engineer. Be the first to apply!
- senior director engineering Indianapolis, IN
- engineering director Indianapolis, IN
- principal engineer Indianapolis, IN
- director software engineering Indianapolis, IN
- general engineer Indianapolis, IN
- director data engineering Indianapolis, IN
- principal data engineer Indianapolis, IN
- senior chief engineer Indianapolis, IN
- principal developer Indianapolis, IN
- senior principal engineer Indianapolis, IN

